CVE-2026-11057
- EPSS 0.25%
- Veröffentlicht 04.06.2026 23:04:38
- Zuletzt bearbeitet 23.07.2026 06:10:00
Uninitialized Use in Skia in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity:...
CVE-2026-11054
- EPSS 0.36%
- Veröffentlicht 04.06.2026 23:04:37
- Zuletzt bearbeitet 23.07.2026 06:10:00
Use after free in WebRTC in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-11055
- EPSS 0.28%
- Veröffentlicht 04.06.2026 23:04:37
- Zuletzt bearbeitet 23.07.2026 06:10:00
Use after free in ANGLE in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-11051
- EPSS 0.23%
- Veröffentlicht 04.06.2026 23:04:36
- Zuletzt bearbeitet 23.07.2026 06:10:00
Out of bounds read in ANGLE in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-11052
- EPSS 0.26%
- Veröffentlicht 04.06.2026 23:04:36
- Zuletzt bearbeitet 23.07.2026 06:10:00
Type Confusion in GPU in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-11049
- EPSS 0.28%
- Veröffentlicht 04.06.2026 23:04:35
- Zuletzt bearbeitet 23.07.2026 06:10:00
Use after free in Password Manager in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-11050
- EPSS 0.28%
- Veröffentlicht 04.06.2026 23:04:35
- Zuletzt bearbeitet 23.07.2026 06:10:00
Use after free in V8 in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)
CVE-2026-11046
- EPSS 0.36%
- Veröffentlicht 04.06.2026 23:04:34
- Zuletzt bearbeitet 23.07.2026 06:10:00
Insufficient validation of untrusted input in Media in Google Chrome prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security seve...
CVE-2026-11047
- EPSS 0.3%
- Veröffentlicht 04.06.2026 23:04:34
- Zuletzt bearbeitet 23.07.2026 06:10:00
Inappropriate implementation in Base in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: M...
CVE-2026-11048
- EPSS 0.16%
- Veröffentlicht 04.06.2026 23:04:34
- Zuletzt bearbeitet 23.07.2026 06:10:00
Inappropriate implementation in Extensions in Google Chrome prior to 149.0.7827.53 allowed an attacker who convinced a user to install a malicious extension to bypass same origin policy via a crafted Chrome Extension. (Chromium security severity: Med...